CVE-2026-13215 | Zephyr Project up to 4.4.1 ext2 filesystem driver ext2_impl.c ext2_verify_disk_superblock s_log_block_size out-of-bounds write
A vulnerability, which was classified as very critical, was found in Zephyr Project Zephyr up to 4.4.1. The affected element is the function ext2_verify_disk_superblock of the file subsys/fs/ext2/ext2_impl.c of the component ext2 filesystem driver. Such manipulation of the argument s_log_block_size leads to out-of-bounds write.
This vulnerability is listed as CVE-2026-13215. The attack must be carried out locally. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More